SOC Engineer 3

Reposted 4 Days Ago
Be an Early Applicant
Bellandur, Bengaluru Urban, Karnataka, IND
In-Office
Senior level
Fintech • Payments • Software • Financial Services
The Role
The SOC Engineer 3 is a senior role responsible for detection engineering, incident response leadership, and SOC operational scaling, focusing on automation and high-volume financial security.
Summary Generated by Built In

SOC Engineer - 3

Detection Engineering, Incident Leadership & Operational Excellence

Location: Bangalore (Work From Office)

Reports to: CISO

Cashfree Payments operates mission-critical payment and API infrastructure under RBI and

PCI-DSS oversight. Our environment processes high-volume financial transactions and

demands high-fidelity detection, rapid response, and operational resilience.

We are building an automation-driven SOC designed to scale beyond traditional monitoring

models.

Role Summary

The SOC Engineer - 3 is a senior, hands-on technical expert pivotal in accelerating the defensive posture and operational maturity of the Cashfree Payments SOC. This role moves beyond traditional monitoring, focusing instead on Detection Engineering, Incident Response

Leadership, and operational scaling within our high-volume, regulated Fintech environment.

We are looking for a system-thinker and builder who can autonomously architect scalable, automation-driven security solutions.

Key Responsibilities

Detection and Threat Engineering

● Architect, develop, implement, and continually tune detection rules and correlation logic across SIEM and EDR platforms.

● Proactively identify and remediate detection gaps, mapping coverage to the MITRE

ATT&CK framework and leveraging threat intelligence, with a special focus on cloud (AWS), containerized (Kubernetes), and payment systems.

● Implement advanced contextual alerting and enrichment strategies to drastically reduce false positive rates and combat alert fatigue.

● Conduct proactive, hypothesis-driven hunting exercises across diverse telemetry sources (cloud, network, endpoint) to uncover covert threats.

Incident Response Leadership & Handling

● Function as the primary technical lead for high-severity and complex security incidents, driving effective containment, eradication, and recovery strategies.

● Execute in-depth log analysis, digital forensics triage, and timeline reconstruction to determine the root cause and scope of compromise.

● Translate findings and lessons learned from incidents into immediate, measurable improvements in detection and prevention mechanisms.

● Ensure meticulous documentation of all incidents, including technical steps, post-incident reviews, and executive summaries.

SOC Operational Maturity & Automation

● Design, develop, and maintain automation playbooks using SOAR platforms to streamline repetitive tasks, triage, and incident response workflows.

● Utilize strong scripting skills (e.g. Python) to engineer custom tools and automation solutions, reducing manual effort and increasing response consistency.

● Establish and refine Standard Operating Procedures (SOPs) and investigation playbooks, ensuring they are current, effective, and adopted across the team.

Performance & Team Enablement

● Take full ownership of critical SOC metrics, including Mean Time to Detect (MTTD),

Mean Time to Respond (MTTR), and False Positive Rate. Drive measurable improvement quarter over quarter.

● Mentor and coach SOC team, elevating their investigative, analytical, and tooling skills.

● Plan and execute periodic simulation exercises (e.g., tabletop exercises, purple team engagements) to test and validate SOC readiness and playbooks.

Required Qualifications and Expertise

Technical Foundation

● B.Tech. in Computer Science, Electrical, or Computer Engineering or equivalent practical experience.

● 7+ years of hands-on experience in a dedicated Security Operations Center (SOC), Incident Response, or Detection Engineering role.

● Expert-level proficiency in SIEM platforms (e.g., Splunk, Elastic, Sentinel) including advanced rule creation, custom parsing, and dashboard development.

● Demonstrated strong scripting skills in Python for security automation and data manipulation.

● Excellent understanding of TCP/IP, common network protocols, and the function of security appliances (Firewalls, IDS/IPS, Proxies).

Soft Skills & Leadership

● Proven ability to operate independently, set priorities, and drive complex projects from concept to completion.

● Exceptional analytical and problem-solving skills for complex, multi-stage security incidents.

● Strong verbal and written communication skills for both technical and executive audiences.

● Experience working in a PCI-DSS or RBI-regulated environment is highly desirable.

What Excellence Looks Like

● Significant reduction in alert fatigue

● Improved detection coverage and signal accuracy

● Faster, more consistent incident response

● Clear improvements in SOC KPIs over time

● Audit evidence readily available without reactive effort

● SOC processes become automation-driven and scalable

Skills Required

  • B.Tech. in Computer Science, Electrical, or Computer Engineering or equivalent practical experience
  • 7+ years of hands-on experience in a dedicated Security Operations Center (SOC), Incident Response, or Detection Engineering role
  • Expert-level proficiency in SIEM platforms (e.g., Splunk, Elastic, Sentinel)
  • Demonstrated strong scripting skills in Python for security automation and data manipulation
  • Excellent understanding of TCP/IP and common network protocols
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Bengaluru
939 Employees
Year Founded: 2015

What We Do

Cashfree Payments is a leading fintech company providing a full-stack payments platform for businesses in India, enabling them to collect payments, make payouts, and manage international transactions.

Similar Jobs

Toast Logo Toast

Principal Product Manager

Cloud • Fintech • Food • Information Technology • Software • Hospitality
In-Office
Bangalore, Bengaluru Urban, Karnataka, IND
5000 Employees

MongoDB Logo MongoDB

Site Reliability Engineer

Big Data • Cloud • Software • Database
Easy Apply
Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
5550 Employees

Capital One Logo Capital One

Senior Associate, Business Analysis

Fintech • Machine Learning • Payments • Software • Financial Services
Hybrid
Bengaluru, Bengaluru Urban, Karnataka, IND
55000 Employees

Optum Logo Optum

Senior Network Engineer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
160000 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account